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Before, MAHSHID D. SAADAT, ROBERT E. NAPPI, and 
MARC S. HOFF, Administrative Patent Judges. 

NAPPI, Administrative Patent Judge. 



DECISION ON APPEAL 1 



1 The two-month time period for filing an appeal or commencing a civil 
action, as recited in 37 C.F.R. § 1.304, or for filing a request for rehearing, 
as recited in 37 C.F.R. § 41.52, begins to run from the "MAIL DATE" 
(paper delivery mode) or the "NOTIFICATION DATE" (electronic delivery 
mode) shown on the PTOL-90A cover letter attached to this decision. 
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This is a decision on appeal under 35 U.S.C. § 134(a) of the final 
rejection of claims 1-10, 12-25, 27-34, and 36-46. 2 We have jurisdiction 
under 35 U.S.C. § 6(b). 

We affirm the Examiner's rejection of these claims. 



INVENTION 

The invention is directed to a method and apparatus for scanning 
network devices to detect a connection and for scanning files to determine 
proper security settings. Additionally, if appropriate security settings are not 
detected, software is loaded to put the network device in compliance with 
the network settings. See Spec: 3-6. Claim 1 is representative of the 
invention and is reproduced below: 

1. A method for scanning network devices connected to a 
network, comprising: 

(a) detecting connection of a first network device to the 
network; 

(b) performing remote agentless scanning of internal files and 
data within the internal files on the first network device to 
determine internal security settings there from, the remote 
agentless scanning being performed automatically in response 
to detection of the first network device to thereby avoid 
downloading a software agent to the first network device; 

(c) comparing the internal security settings determined 
through the remote agentless scanning with predefined security 
settings to determine compliance therewith; and 

(d) automatically performing a remote installation of a 
security software program on the first network device if the 
internal security settings are not in compliance with the 
predefined network settings. 



2 Claims 11, 26, and 35 have been previously cancelled. 
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REJECTIONS AT ISSUE 
Claims 1-4, 6-10, 12, 14-18, 20-24, 31, 36, 39, 42, and 44-45 are 
rejected under 35 U.S.C. § 103(a) as being unpatentable over Boyter in view 
of Liang. Ans. 3-10 and 16-17. 

Claims 38 and 41 are rejected under 35 U.S.C. § 103(a) as being 
unpatentable over Boyter in view of Liang and Ivanov. Ans. 1 1 . 

Claims 27-30 and 33-34 are rejected under 35 U.S.C. § 103(a) as 
being unpatentable over Boyter in view of Liang and Tracy. Ans. 11-13. 



3 



Appeal 2009-007520 
Application 10/683,564 

Claim 5 is rejected under 35 U.S.C. § 103(a) as being unpatentable 
over Boyter in view of Liang and Moore. Ans. 13-14. 

Claims 13, 19, and 25 are rejected under 35 U.S.C. § 103(a) as being 
unpatentable over Boyter in view of Liang and Watkins. Ans. 14-15. 

Claims 32 and 37 are rejected under 35 U.S.C. § 103(a) as being 
unpatentable over Boyter in view of Liang and Magdych. Ans. 15-16. 

Claims 40, 43, and 46 are rejected under 35 U.S.C. § 103(a) as being 
unpatentable over Boyter in view of Liang and Heintz. Ans. 17-18. 

ISSUES 

Claims 1, 3-4, 6-10, 12, 14-18, 20-24, 31, 36, and 44 

Appellants argue on pages 10-15 and 17-19 of the Appeal Brief and 
pages 4-8 of the Reply Brief that the Examiner's rejection of claims 1, 3-4, 
6-10, 12, 14-18, 20-24, 31, 36, and 44 is in error. Appellants select claim 1 
as representative of the group comprising claims 1, 3-4, 6-10, 12, 14-18, 20- 
24, 31, 36, and 44. App. Br. 15 and 17-19. Appellants argue that neither 
Boyter nor Liang discloses: (1) remote agentless scanning; (2) determining 
security settings as a result of detecting a new connection; or (3) remote 
agentless scanning of data within internal files to determine security settings. 
App. Br. 10-12; Reply Br. 4-8. Additionally, Appellants argue that it would 
not have been obvious to combine Liang with Boyter. App.Br. 14-15; Reply 
Br. 5-6. 

Thus, with respect to claims 1, 3-10, 12-25, 27-34, and 36-46, 
Appellants' contentions presents us with the following issues: Did the 
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Examiner err in finding that Boyter in view of Liang disclose: (1) remote 
agentless scanning; (2) determining security settings as a result of detecting 
a new connection; and (3) remote agentless scanning of data within internal 
files to determine security settings? Also, Did the Examiner err in 
combining Liang with Boyter? 

Claim 2 

Appellants argue on pages 15-17 of the Appeal Brief that the 
Examiner's rejection of claim 2 is in error. Appellants argue that claim 2 is 
allowable for the same reasons as its independent claim. App. Br. 15. 
Additionally, Appellants argue that neither Boyter nor Liang discloses 
"inspecting data packets communicated over the network." App. Br. 16. 

Thus, with respect to claim 2, Appellants' contention presents us with 
the same issue as claim 1 and the additional issue: Did the Examiner err in 
finding that Boyter and Liang disclose inspecting data packets 
communicated over the network? 

ANALYSIS 

Claims 1, 3-4, 6-10, 12, 14-18, 20-24, 31, 36, and 44 

Appellants' arguments have not persuaded us of error in the 
Examiner's rejection of claim 1. Claim 1 recites "performing remote 
agentless scanning of internal files and data within the internal files on the 
first network device to determine internal security settings there from, the 
remote agentless scanning being performed automatically in response to 
detection of the first network device." Appellants initially argue that neither 
Boyter nor Liang discloses remote agentless scanning. App. Br. 10. 
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However, the Examiner finds that Liang discloses a virus scan server 
module that scans the memory of a visitor client device. Ans. 18. 
Therefore, the Examiner finds that Liang's virus scan server module 
performs remote agentless scanning of the visitor client device, as claimed. 
Ans. 18. We concur with the Examiner's finding. 

Next, Appellants argue that neither Boyter nor Liang discloses remote 
agentless scanning as a result of detecting the connection of a first network 
device. App. Br. 11. Originally, the Examiner found that Boyter discloses 
scanning a new host or a new port when found on an existing host. Ans. 3. 
The Examiner finds that this portion of Boyter, combined with Liang's 
remote agentless scanning meets the claimed limitation. Ans. 3. 
Alternatively, the Examiner also finds that Liang discloses detecting the 
connection of a device when the process begins and determines whether the 
attached client device complies with the latest anti-virus policies. Ans. 19. 
We concur with the Examiner's findings. In response, Appellants argue that 
Liang does not contemplate the problems associated with a delay between 
the connection of a device and the beginning of a scan. App. Br. 11; Reply 
Br. 5. As such, Appellants argue that Liang cannot provide a solution to a 
problem that is not addressed in Liang. App. Br. 1 1 ; Reply Br. 5. However, 
this argument is not persuasive since there are no claim limitations directed 
toward the purpose of scanning as a result of detecting a connection. In 
addition, the Examiner has found that the references disclose this limitation. 

Appellants also argue that neither Boyter nor Liang discloses 
performing remote agentless scanning of internal files since Liang discloses 
querying client devices. App. Br. 13; Reply Br. 6. Querying devices causes 
the devices to scan themselves to determine what anti- virus software is 
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present. App. Br. 13; Reply Br. 6. This scanning is local scanning rather 
than remote scanning. App. Br. 12. However, Appellants' Specification 
describes a "vulnerability scan" as "a port scan and/or probing the first 
network device 110 against a large list of known vulnerabilities." Spec, f 
[0030]. Therefore, because querying a device is the same as probing a 
device, Appellants argument is not persuasive. 

Finally, Appellants argue that it would not have been obvious to 
combine Liang with Boyter. App. Br. 15; Reply Br. 5. Appellants argue 
that the motivation provided by the Examiner is not related to remote 
agentless scanning. App. Br. 14-15; Reply Br. 5-6. We find that the 
Examiner's motivation is reasonable. However, we also note, as discussed 
above, that the Examiner finds that both Liang and Boyter disclose the claim 
limitation that requires detecting the connection of a device. As such, it is 
reasonable to combine Liang with Boyter and Appellants' argument is not 
found to be persuasive. 

For the reasons discussed supra, we sustain the Examiner's rejection 
of claim 1 and claims 3-4, 6-10, 12, 14-18, 20-24, 31, 36, and 44 that have 
been grouped with claim 1. 

As Appellants' arguments directed to the rejection of claims 5, 13, 19, 
25, 27-30, 32-34, 37-43, and 45-46 present the same issues as discussed 
above with respect to independent claims 1, 15, and 21, we sustain the 
Examiner's rejection of claims 5, 13, 19, 25, 27-30, 32-34, 37-43, and 45-46. 

Claim 2 

Appellants' arguments have not persuaded us of error in the 
Examiner's rejection of claim 2. Claim 2 recites "wherein step (a) further 
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comprises inspecting data packets communicated over the network." 
Appellants argue that neither Boyter nor Liang discloses inspecting data 
packets. App. Br. 16. However, the Examiner finds that Boyter, in 
paragraph [0053], discloses listening for responses after a Scanner Daemon 
sends a packet to every host. Ans. 22. The Examiner finds that this is the 
same as inspecting packets. Ans. 22. Appellants' arguments have not 
addressed these findings by the Examiner. Thus, Appellants have not 
persuaded us that the Examiner erred in making these findings. 
Accordingly, we sustain the Examiner's rejection of claim 2. 



CONCLUSION 

The Examiner did not err in finding that Boyter in view of Liang 
discloses: (1) remote agentless scanning; (2) determining security settings as 
a result of detecting a new connection; and (3) remote agentless scanning of 
data within internal files to determine security settings. 

The Examiner did not err in combining Liang with Boyter. 

The Examiner did not err in finding that Boyter and Liang disclose 
inspecting data packets communicated over the network. 

SUMMARY 

The Examiner's decision to reject claims 1-10, 12-25, 27-34, and 36- 
46 is affirmed. 

No time period for taking any subsequent action in connection with 
this appeal may be extended under 37 C.F.R. § 1.136 (a)(l)(iv). 



8 



Appeal 2009-007520 
Application 10/683,564 



AFFIRMED 



ELD 

ADVANTAGE LAW GROUP, LLC 
922 W. BAXTER DR. 
SUITE 100 

SOUTH JORDAN, UT 84095 
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